Natrag   Forum.hr > Informatička tehnologija > IT Help service > Security

Security Antivirusi, firewalli, patchevi, service packovi, updatei, ... Sve o sigurnosti vašeg računala.

Odgovor
 
Tematski alati Opcije prikaza
Old 29.01.2007., 15:11   #21
Quote:
myljach kaže: Pogledaj post
E da, koristim i neke ručne skripte za podešavanje registrija i sistema upravo protiv priljepaka na sistem restore, pasvorda, admin-a, pagefilea, sheringa...i sl. To se da ručno poigrati, ko zna. Ako moderato dozvoli, mogu uploudat sistem na postu. link sam negdje zagubio
Zašto ne bi dozvolio? Ako i ne dozvoli, pobrisat će ti post... Ajde stavi tu skriptu, baš me zanima šta si to osmislio!
 
Odgovori s citatom
Old 29.01.2007., 15:16   #22
Quote:
kezo2000 kaže: Pogledaj post
Pitanje, koji je bolji antivirusni program ?

Norton Antivirus 2006
AVG Antivirus Pro
Avast Pro
BitDefender Antivirus Plus 10.0
F-Secure Internet security 2007
ZonaAlarm Internet Security Suite 7.0.722

Ne znam kojeg da odabarem, pa bi molio pomoč...
Hvala
Odmah da ti kazem, Nortona stavi ako hoces imati probleme. Ja sam ima norton, i uspio sam nakupiti 32 virusa koji su mi usporavali komp. Zvao sam strucnjaka, pitao me koji program imam, ja kazem Norton, a on meni fino kaze:makni to sranje sa kompa. sad vec duze vrijeme imam avast. I mogu ti reci da vise nemam nikakvih problema. Sa Avastom sam prezadovoljan. ja ti savjetujem Avast. ti razmisli jos, raspitaj se.
Old Spice is offline  
Odgovori s citatom
Old 29.01.2007., 15:17   #23
Quote:
klinsider kaže: Pogledaj post
Ja koristim kaspersky.

Ak netko zna za boljeg....
Ja znam. Avast.
Old Spice is offline  
Odgovori s citatom
Old 29.01.2007., 18:13   #24
Quote:
myljach kaže: Pogledaj post
Imao sam iskustva sa onim koji prežive formatiranje, te je jedina opcija low level format, i to uz upotrebu alata poput killdiska(formatiranje u fat 16, sistem 0..)
Koji to virusi preživljavaju format?
Bubu74 is offline  
Odgovori s citatom
Old 29.01.2007., 21:52   #25
Quote:
Bubu74 kaže: Pogledaj post
Koji to virusi preživljavaju format?
Drago mi je da se netko sjetio priupitati. Izbriso sam, taj virus, ne znam kak se zove. Ali analizom jednog kompi tima za koji povremeno pišem je jedno vrijeme bila dogma da li postoji il ne. Virus je vrlo mali, služio je destrukciji programa koji bi vremenom prestajali radit, a način na koji preživi brisanje : jel znaš ako pobrišeš sa harda podatke da oni mogu biti regenerirani raznim programima ( data rescue, neke bolje koristi cia)? Podaci i dalje postoje u fragmentima magnetskog zapisa. Ako formatiraš sa cd-om od windoza, u ntfs-u on klasterira u 512 bitnim lokacijama, tako da teoretski u njima neki vrlo mali progiči mogu opstati. Za ovaj mislim da je to bio problem, a s time se još uvijek kolko mi je poznato bore stručnjaci kod analize.
Mali primjer : crv helkern, velik svega 315 bajta, kad uleti u komp, kopira se u OS, kopira se 256 puta, i svaki dio se pošalje na random IP adresu. Kad svaki nađe hosta, opet kopi, množ-množ, randomIP....i tak unedogled. Meni kaspersky 5.0 (4.9 NE) svakih sat na netu prijavi jedan pokušaj uleta helkerna. Smisao mu nitko nije našao, osim zagušenja mreža jer se širi munjevitom brzinom
myljach is offline  
Odgovori s citatom
Old 29.01.2007., 21:56   #26
Quote:
Cele303 kaže: Pogledaj post
Zašto ne bi dozvolio? Ako i ne dozvoli, pobrisat će ti post... Ajde stavi tu skriptu, baš me zanima šta si to osmislio!
Evo ga:

Attack: The lame attack which will use the password screensaver to hack your admin account.
Defence: Go to: Start-run-regedit
HKEY_USERS - .Default – Control Panel – Desktop (single click here)
SCRNSAVE.EXE – double click and set value: none
ScreenSaveActive – double click and set value: No

Attack: Someone who brute force your admin password must know the username first. The default username for administrator account is Administrator. Make the username different and that way protect youself a little more from brute-forcing technique to your admin account
Defence: Change the default username:
Start – Control Panel – Administrative Tools – Computer Management
Local Users and Groups – Users – Right click Administrator and rename

Attack: If you have guest account turned on, althought it is limited it offers some possibilities to attacker to find out your administarot password
Defence: Start – Control Panel – Administrative Tools – Computer Management
Local Users and Groups – Users – Guest – right click and then properties - check Account is disabled checkbox

Attack: Someone can easily exploit Remote Desktop finding your password and then have full remote control over your system
Defence: Disable Remote Desktop:
Right click My Computer – Remote
Clear the checkbox from the Allow users to connect remotely to this computer

Attack: Someone can access your computer throught Remote Assistance even you don’t allow him
Defence: Disable Remote Assistance
Right click My Computer – Properties – Remote – uncheck checkbox Allow Remote Assistance invitations to be sent from this computer box

Attack: Someone can access your shared files and find out if you have some sensitive informations
Defence: Start – Control Panel – Network Connections – double click Local Area Connection – General – Properites – clear the checkbox File and Printer Sharing for Microsoft Windows box

Attack: If in your pagefile is stored something confident like usernames and password, someone who has broke into your computer can easily access them
Defence: Start- Run – regedit
HKEY_LOCAL_MACHICE – System – CurrentControlSet – Control – Session Manager – Memory Management (one click here)
Double click ClearPageFileatShutdown and set it to value 1

Attack: Somone can use your dumb file to access some confidental informations
Defence: Start – Control Panel – System – Advanced – Starup and Recovery section – Settings
Write Debugging informations drop-down box – None

Attack: Someone can access your file sharing documents and find out sensitive informations about you and maeby you account
Defence: Disable Simple File Sharing:
My Computer – Tools – Folder Options – View – Use simple file sharing

Attack: If you have unused web server someone can easily exploit it and gain remote access to your computer
Defence: Start – Control Panel – Add or Remove Programs – Add/Remove Windows Components
Uncheck the checkbox Internet Information Services (IIS)

Attack: Someone can exploits the hosts file on you computer
Defence: Modify the hosts file
My Computer – C:\ - Windows – System32 – Drivers – Etc - look at the file named hosts
Create new line and type your ip 127.0.0.1, then space and the website you want to block


Attack: Even if you show extension, some very common extension will not show. This can allow the attacker to trick you with his double extension files
Defence: Start – run – regedit
Then click Edit – Find and type: NeverShowExt. Delete all registry keys that contain this name (there are more than 10). To continue searching the registry, press F3

Attack: Someone can give you VBScript file and infect your computer
Defence: Disable VSScript files:
My Compputer – Tools – Folder Options – File Types – VBS Extension
Except VBS, do this in the following extensions:
JS, JSE, VBE, WSF
myljach is offline  
Odgovori s citatom
Old 29.01.2007., 21:59   #27
Quote:
myljach kaže: Pogledaj post
Meni kaspersky 5.0 (4.9 NE) svakih sat na netu prijavi jedan pokušaj uleta helkerna. Smisao mu nitko nije našao, osim zagušenja mreža jer se širi munjevitom brzinom
Zašto kažeš da mu smisao nitko nije našao?? Pa šta nije kolizija na mreži i previše ozbiljan problem?
 
Odgovori s citatom
Old 29.01.2007., 22:06   #28
Quote:
myljach kaže: Pogledaj post
Evo ga:

Attack: The lame attack which will use the password screensaver to hack your admin account.
Defence: Go to: Start-run-regedit
HKEY_USERS - .Default – Control Panel – Desktop (single click here)
SCRNSAVE.EXE – double click and set value: none
ScreenSaveActive – double click and set value: No

Attack: Someone who brute force your admin password must know the username first. The default username for administrator account is Administrator. Make the username different and that way protect youself a little more from brute-forcing technique to your admin account
Defence: Change the default username:
Start – Control Panel – Administrative Tools – Computer Management
Local Users and Groups – Users – Right click Administrator and rename

Attack: If you have guest account turned on, althought it is limited it offers some possibilities to attacker to find out your administarot password
Defence: Start – Control Panel – Administrative Tools – Computer Management
Local Users and Groups – Users – Guest – right click and then properties - check Account is disabled checkbox

Attack: Someone can easily exploit Remote Desktop finding your password and then have full remote control over your system
Defence: Disable Remote Desktop:
Right click My Computer – Remote
Clear the checkbox from the Allow users to connect remotely to this computer

Attack: Someone can access your computer throught Remote Assistance even you don’t allow him
Defence: Disable Remote Assistance
Right click My Computer – Properties – Remote – uncheck checkbox Allow Remote Assistance invitations to be sent from this computer box

Attack: Someone can access your shared files and find out if you have some sensitive informations
Defence: Start – Control Panel – Network Connections – double click Local Area Connection – General – Properites – clear the checkbox File and Printer Sharing for Microsoft Windows box

Attack: If in your pagefile is stored something confident like usernames and password, someone who has broke into your computer can easily access them
Defence: Start- Run – regedit
HKEY_LOCAL_MACHICE – System – CurrentControlSet – Control – Session Manager – Memory Management (one click here)
Double click ClearPageFileatShutdown and set it to value 1

Attack: Somone can use your dumb file to access some confidental informations
Defence: Start – Control Panel – System – Advanced – Starup and Recovery section – Settings
Write Debugging informations drop-down box – None

Attack: Someone can access your file sharing documents and find out sensitive informations about you and maeby you account
Defence: Disable Simple File Sharing:
My Computer – Tools – Folder Options – View – Use simple file sharing

Attack: If you have unused web server someone can easily exploit it and gain remote access to your computer
Defence: Start – Control Panel – Add or Remove Programs – Add/Remove Windows Components
Uncheck the checkbox Internet Information Services (IIS)

Attack: Someone can exploits the hosts file on you computer
Defence: Modify the hosts file
My Computer – C:\ - Windows – System32 – Drivers – Etc - look at the file named hosts
Create new line and type your ip 127.0.0.1, then space and the website you want to block


Attack: Even if you show extension, some very common extension will not show. This can allow the attacker to trick you with his double extension files
Defence: Start – run – regedit
Then click Edit – Find and type: NeverShowExt. Delete all registry keys that contain this name (there are more than 10). To continue searching the registry, press F3

Attack: Someone can give you VBScript file and infect your computer
Defence: Disable VSScript files:
My Compputer – Tools – Folder Options – File Types – VBS Extension
Except VBS, do this in the following extensions:
JS, JSE, VBE, WSF
Mislio sam da si ti napisao nešto, ovo su sve općepoznati tips & tricks... Ovo je zapravo tvoj šalabahter (podsjetnik) a ne skripta...
Ali dobro, sigurno će dobro doć ljudima koji se manje razumiju, iako je četvrtina popisa malo paranoična...
 
Odgovori s citatom
Old 30.01.2007., 03:50   #29
Quote:
Cele303 kaže: Pogledaj post
Zašto kažeš da mu smisao nitko nije našao?? Pa šta nije kolizija na mreži i previše ozbiljan problem?
Dobro, je velik problem je, ali se uvijek traži nešto drugo što mže bit pravi razlog.
Prije 3-4 godine je bio neki crv aktualan , mislim da je bil netsky, nisam siguran, i svi su mislili da je za širenje i množenje i zagušenje ( neposredno prije dsl-a kod nas) a nakon cca godinu dana našli su mu pravi smisao : prilikom ulaza u OS traži pos od banke. Tonskim sistemom skida šifre, sa svakog računa skida po 10centi(mislim 10, tak nekaj sitnog) i upačuje na autorov račun bogsepitajgdje.
Ne mora sve bit kak se čini na prvi pogled. Istina, helkern je premali da u programskome jeziku ima toliko petlji, ali opet: sjeti se stranice 94kb? i njihovih uradaka(videoigre pristojne grafike u 94kb!!)

Quote:
Mislio sam da si ti napisao nešto, ovo su sve općepoznati tips & tricks... Ovo je zapravo tvoj šalabahter (podsjetnik) a ne skripta...
Ali dobro, sigurno će dobro doć ljudima koji se manje razumiju, iako je četvrtina popisa malo paranoična...
Ne, ja sam ljenčina i lopov, a i nemam baš vremena. Osobno malo uvjek poriktam win u msconfig, gpedit.msc. I većinu moram zapisat jer sam kratkog pamčenja.

P.S. dobar prog za low level format : killdisk - lite verzija preore hard na fat16, regana il krekana u 8 načina dublje, da ni cija nemre regenerirat date. Onak, palo, mi na pamet, ponekad je korisno imat
myljach is offline  
Odgovori s citatom
Old 30.01.2007., 08:18   #30
ja imam Panda Platinum Antivirus i super je, sve zivo lovi i usput jos nekih par dodatnih stvari tako da je komp osiguran ali moze se i prilicno solidna zastitia slozit od freeware programa isto
__________________
Growing old is mandatory. Growing up is optional.
lie is offline  
Odgovori s citatom
Old 31.01.2007., 01:59   #31
Quote:
myljach kaže: Pogledaj post
koju verziju kasperskog imaš? Ja sam godinama koristio 4.9, i bio zadovoljan slične testove sam radio i sam sa svojom bazom virusa. sad koristim gore spomenuti 5.0, koji ima slajd za heuristiku, ako stavišna maximum protection, koristi je, alje sporiji. Normal koristi osnovnu i baze podataka. Heuristika je kvalitetnija što je AV sporiji, bez obzira na način kriptiranja, koji je svima na istoj bazi ( provjerava text, ini, bat.....fajlove sa čudnim programerskim završetcima petlje dijagrama toka)
da li imaš iskustva sa novim kasp. 6.0?ja sam na 5.0.
danas sam imao virus kod kojeg sam prije radio format c sa kasp4.9
5-ica ga je skinula, trojan win32 agent.ady. infiltrirao se u winlogon(nije duplicirao, nego se uprogramirao)sa wuault servisom sistema, i dva tijela u sys32. Maknuo ga je kod dizanja sistema, ranije sam morao format c ili restore point

da, govorim o 6.0 tocnije o zadnjoj verziji koja postoji i vracam naazd nod32 jer ovo vise nema smisla
__________________
When people are dancing in your funeral you know you've lived a life worth celebrating
mr. No is offline  
Odgovori s citatom
Old 31.01.2007., 13:48   #32
Quote:
mr. No kaže: Pogledaj post
da, govorim o 6.0 tocnije o zadnjoj verziji koja postoji i vracam naazd nod32 jer ovo vise nema smisla
Potpuno te podržavam, jer uglavnom, svatko od nas ima svoj antivirus koji mu je super i ima svoje osobne razloge za to. Meni je kaspersky favorit, dok recimo o nodu32 imam mišljenje možda gore nego ti o kasperskom. Kod odabira je bitno i višegodišnje iskustvo i navika na točno određenu aplikaciju, tak da je većina ovih postova na ovom topicu subjektivna, i svatko od nas sam odabire kakvi su mu prioriteti.
myljach is offline  
Odgovori s citatom
Old 01.02.2007., 02:21   #33
Svatko ima svoj ukus u izboru antivirusnih programa

Zadnje uređivanje bestzg : 01.02.2007. at 02:22. Reason: krivo napisano
bestzg is offline  
Odgovori s citatom
Old 01.02.2007., 18:02   #34
McAffe Security center koristim i nikakvih problema nikad...a i Nod 32 je jako dobar
Tenhi is offline  
Odgovori s citatom
Old 01.02.2007., 23:42   #35
Quote:
Tenhi kaže: Pogledaj post
McAffe Security center koristim i ...
Dobar je, ima u sistemu i ok firewall, koji posebno koristim
myljach is offline  
Odgovori s citatom
Old 03.02.2007., 00:50   #36
Quote:
myljach kaže: Pogledaj post
Dobar je, ima u sistemu i ok firewall, koji posebno koristim
da fakat je ok
Tenhi is offline  
Odgovori s citatom
Old 03.02.2007., 01:30   #37
Nemam niti antivirusa niti anitispya niti firewall, nemam ništa i nemam nikakvih problema
No22 is offline  
Odgovori s citatom
Old 03.02.2007., 04:53   #38
Quote:
No123 kaže: Pogledaj post
Nemam niti antivirusa niti anitispya niti firewall, nemam ništa i nemam nikakvih problema
Nemaš ni medu
nemaš ni zeku
nemaš ni autić
neeeemaaaš tiiiiiiii!!!!!

(normalnofobia)

myljach is offline  
Odgovori s citatom
Old 03.02.2007., 13:08   #39
Quote:
No123 kaže: Pogledaj post
Nemam niti antivirusa niti anitispya niti firewall, nemam ništa i nemam
... Internet!
Sitting Bull is offline  
Odgovori s citatom
Old 03.02.2007., 13:22   #40
Ne znam koji je najbolji, ali meni savršeno radi besplatni AntiVir ( http://www.free-av.de/ ) u kombinaciji sa Sygate Personal Firewall. Već godinama nemam problema s bilo kakvim virusima ili slično.
Ok, to je možda i zbog toga što manje koristim Internet Explorer i manje visim na onim stranicama sa sisama.
__________________
I Love U
Vuco is offline  
Odgovori s citatom
Odgovor


Tematski alati
Opcije prikaza

Kreni na podforum




Sva vremena su GMT +2. Trenutno vrijeme je: 02:41.